SA-2023-083 - OpenSSH forwarded ssh-agent (CVE-2023-38408)
Summary The PKCS#11 feature in ssh-agent in OpenSSH has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. Products ...